ET DROP Spamhaus DROP Listed Traffic Inbound group 9
Sourceet/open
CreatedDecember 30, 2010
UpdatedMay 27, 2026
Classificationmisc-attack
alert ip [62.60.226.0/24,62.204.41.0/24,63.80.8.0/22,63.80.80.0/21,64.15.0.0/20,64.89.160.0/23,64.89.160.0/22,64.92.224.0/20,64.116.200.0/21,64.250.144.0/20,64.254.80.0/20,65.166.249.0/24,65.205.64.0/22,65.216.208.0/21,66.198.225.0/24,67.219.208.0/20,69.40.207.0/24,69.165.0.0/20,71.180.0.0/18,71.180.64.0/18] any -> $HOME_NET any (msg:"ET DROP Spamhaus DROP Listed Traffic Inbound group 9"; reference:url,www.spamhaus.org/drop/drop.txt; threshold:type limit, track by_src, seconds 3600, count 1; classtype:misc-attack; flowbits:set,ET.Evil; flowbits:set,ET.DROPIP; sid:2400008; rev:4720; metadata:affected_product Any, attack_target Any, deployment Perimeter, tag Dshield, signature_severity Minor, created_at 2010_12_30, updated_at 2026_05_27;)
References
Metadata
affected productAny
attack targetAny
deploymentPerimeter
tagDshield
signature severityMinor
created at2010_12_30
updated at2026_05_27
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!